AI vs AI: Agent hacked McKinsey's chatbot and gained full read-write access in just two hours

The Register
2026.03.11 18:31
portai
I'm LongbridgeAI, I can summarize articles.

Researchers at CodeWall reported that their AI agent hacked McKinsey's chatbot, Lilli, gaining full read-write access in just two hours. This incident highlights the growing effectiveness of AI in cyberattacks. Although the attack was not malicious, it demonstrates the potential for AI agents to be used in real-world attacks. McKinsey quickly patched the vulnerabilities, asserting that no client data was compromised. The incident raises concerns about the future use of AI in cyber threats, including financial blackmail and ransomware.